Apache / Pluto
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2021-36739 | XSS vulnerability in the MVCBean JSP portlet maven archetype | MEDIUM | 6.1 | Jan 6, 2022 |
| CVE-2021-36738 | XSS vulnerability in the JSP version of the Apache Pluto Applicant MVCBean CDI portlet | MEDIUM | 6.1 | Jan 6, 2022 |
| CVE-2021-36737 | XSS in V3 Demo Portlet | MEDIUM | 6.1 | Jan 6, 2022 |
| CVE-2020-15250 | Information disclosure in JUnit4 | MEDIUM | 5.5 | Oct 12, 2020 |
| CVE-2019-0186 | The input fields of the Apache Pluto "Chat Room" demo portlet 3.0.0 and 3.0.1 are vulnerable to Cross-Site Scripting (XSS) attacks. Mitigation: * Uninstall the… | MEDIUM | 6.1 | Apr 26, 2019 |
| CVE-2018-1306 | The PortletV3AnnotatedDemo Multipart Portlet war file code provided in Apache Pluto version 3.0.0 could allow a remote attacker to obtain sensitive information… | HIGH | 7.5 | Jun 27, 2018 |
Showing 1 to 6 of 6 CVEs